MALICIOUS — CRITICAL
led-ger-com-strt[.]pages[.]dev
10 of 91 security engines flagged the domain; the latest stored check returned HTTP 403.
- VirusTotal
- 10/91
- Blocklists
- No stored match
- 可用性
- 可达 · 访问受限 · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
led-ger-com-strt.pages.dev — 可达 · 访问受限 (HTTP 403). 品牌冒充:Ledger; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 10/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Fortinet); URLScan malicious verdict; PhishDestroy score 93/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Evidence Digest
led-ger-com-strt.pages.dev is classified critical with an evidence score of 93/100. 10 of 91 security engines flagged the domain. Registered 24 Mar 2026 via Cloudflare, Inc., hosted on 172.66.46.253 (Cloudflare, Inc., CA). The latest stored check on 9 Aug 2026 returned HTTP 403 and includes a capture.
Stored generated summary (templated)cerebras · 2026年7月13日
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
The domain led-ger-com-strt.pages.dev was registered on 24 March 2026 and is hosted behind Cloudflare’s network (IP 172.66.46.253, CA location). The site serves a page titled “Official Ledger Start® | Step‑by‑Step Guide to Secure Your Crypto”, directly referencing the Ledger brand, which matches the classified threat type of brand impersonation. Technical headers reveal the use of HTTP/3, enforced HSTS, and a TLS certificate issued by Google Trust Services under the WE1 root, indicating a legitimate‑looking HTTPS deployment. VirusTotal scans show 11 of 94 security vendors flagging the domain, and the URL is listed on at least one public phishing blocklist and has been blocked by PhishDestroy. The Gridinsoft trust score of 0/100 further underscores its malicious reputation. The HTTP response currently returns a 403 status, suggesting the content may be gated or deliberately hidden from generic requests. No additional intelligence on the page content or payloads is available. Defenders should immediately add the domain to outbound‑traffic blocklists, monitor DNS queries for the domain or its Cloudflare nameservers (justin.ns.cloudflare.com, meadow.ns.cloudflare.com), and incorporate the observed TLS fingerprint into network‑level detection rules. User‑education campaigns should warn Ledger users about unsolicited guides that claim to “secure your crypto” and direct them to only official Ledger URLs. Continuous re‑scanning is advised to capture any changes in the site's behavior.
数据覆盖范围12 recorded checks
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of led-ger-com-strt.pages.dev · checked Mar 24, 2026
证据与外部报告Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。